Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.70788
Category:Gentoo Local Security Checks
Title:Gentoo Security Advisory GLSA 201110-25 (Pure-FTPd)
Summary:The remote host is missing updates announced in;advisory GLSA 201110-25.
Description:Summary:
The remote host is missing updates announced in
advisory GLSA 201110-25.

Vulnerability Insight:
Multiple vulnerabilities were found in Pure-FTPd allowing attackers
to inject FTP commands or cause a Denial of Service.

Solution:
All pure-ftpd users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=net-ftp/pure-ftpd-1.0.32'


NOTE: This is a legacy GLSA. Updates for all affected architectures are
available since May 14, 2011. It is likely that your system is
already no
longer affected by this issue.

CVSS Score:
5.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2011-0418
BugTraq ID: 47671
http://www.securityfocus.com/bid/47671
http://www.mandriva.com/security/advisories?name=MDVSA-2011:094
http://securityreason.com/securityalert/8228
http://securityreason.com/achievement_securityalert/97
http://www.vupen.com/english/advisories/2011/1273
Common Vulnerability Exposure (CVE) ID: CVE-2011-1575
http://lists.opensuse.org/opensuse-updates/2011-05/msg00029.html
http://openwall.com/lists/oss-security/2011/04/11/14
http://openwall.com/lists/oss-security/2011/04/11/7
http://openwall.com/lists/oss-security/2011/04/11/8
http://openwall.com/lists/oss-security/2011/04/11/3
http://archives.pureftpd.org/archives.cgi?100:mss:3906:201103:cpeojfkblajnpinkeadd
http://archives.pureftpd.org/archives.cgi?100:mss:3910:201103:cpeojfkblajnpinkeadd
http://secunia.com/advisories/43988
http://secunia.com/advisories/44548
SuSE Security Announcement: SUSE-SR:2011:009 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00005.html
CopyrightCopyright (C) 2012 E-Soft Inc.

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.